VYPR

NI-PAL

by Ni

CVEs (3)

  • CVE-2026-8036HigJun 2, 2026
    risk 0.46cvss 7.1epss

    Improper input validation in NI-PAL may allow a local authenticated user to access arbitrary system memory, potentially leading to privilege escalation. This vulnerability affects NI-PAL 26.3.0 and prior versions on Windows and Linux.

  • CVE-2026-8035HigJun 2, 2026
    risk 0.46cvss 7.1epss

    Improper input validation in the NI-PAL kernel driver may allow a local authenticated user to cause a denial of service by triggering a crash due to a NULL pointer dereference. This vulnerability affects NI-PAL 26.3.0 and prior versions on Windows and Linux.

  • CVE-2021-38304Sep 17, 2021
    risk 0.00cvss epss 0.00

    Improper input validation in the National Instruments NI-PAL driver in versions 20.0.0 and prior may allow a privileged user to potentially enable escalation of privilege via local access.